๐ฉ๐ช
Hazzard
2026-09-01 03:43:40
(2 days ago)
(mod_security) mod_security triggered on hostname [redacted]): (CF_ENABLE)
SQL Injection
๐ซ๐ฎ
mnazibo
2026-09-01 02:00:05
(2 days ago)
Date: 01/Sep/2026 04:25:52 | Reported IP: 34.93.132.141 mod_security | id: 930130 932130 932235 9322 ...
show more
Date: 01/Sep/2026 04:25:52 | Reported IP: 34.93.132.141 mod_security | id: 930130 932130 932235 932260 933135 934100 934130 942151 942550 | IN/group.my_domain/- | Connections: 260 | Blocked: Permanent Block: [LF_MODSEC] | URIs: /; /actions/.env; /admin/.env; /administrator/.env; /administrator/phpinfo.php; /admin-panel/.env; /admin/phpinfo.php; /angular/.env; /ansible/.env; /api/dev/.env; /api/.env; /api/staging/.env; /api/v1/.env; /api/v2/.env; /api/v3/.env; /app/.env; /application_default_credentials.json; /application/.env; /apps/.env; /aws/.env; /azure/.env; /backend/.env; /backup/.env; /backups/.env; /beta/.env; /beta/phpinfo.php; /bin/.env; /bootstrap/.env; /brevo/.env; /build/.env; /buildkite/.env; /bulk/.env; /cache/.env; /cakephp/.env; /campaign/.env; /cd/.env; /ci/.env; /circleci/.env; /client/.env; /cloud/.env; /cms/.env; /codeigniter/.env; /config/app/.env; /config/.env; /.config/gcloud/application_default_credentials.json;
show less
SQL Injection
Brute-Force
Bad Web Bot
๐ฉ๐ช
FD-IX
2026-09-01 01:03:30
(2 days ago)
Fail2Ban: ModSecurity detected a web application attack.
Bad Web Bot
Web App Attack
๐ฆ๐บ
rubixstudios
2026-09-01 00:38:02
(3 days ago)
Excessive HTTP requests consistent with automated attack behaviour detected by Imunify360
DDoS Attack
Brute-Force
Web App Attack
๐ฎ๐น
abuseiphack
2026-09-01 00:28:05
(3 days ago)
Automatic report for brute force attack
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 00:00:38
(3 days ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack
๐ณ๐ฑ
homeshowdomain.nl
2026-08-31 22:02:07
(3 days ago)
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on ...
show more
Auto-ban: single probe for restricted files (.env / backups / admin endpoints). Likely mass-scan on 2026-08-30.
show less
Web App Attack
SSH
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-31 13:14:19
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 09:14:12.720671 2026] [security2:error] [pid 24969:tid 25105] [client 34.93.132.141:49424] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wicca-love-spells.com"] [uri "/.git/config"] [unique_id "apV-JFSVMGe5tRMV97JE3wAAAJc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ณ๐ฑ
Site.eu
2026-08-31 11:09:51
(3 days ago)
Excessive 404/403 errors
Brute-Force
๐ฆ๐บ
paulshipley.com.au
2026-08-31 10:55:48
(3 days ago)
[Mon Aug 31 20:55:48.071835 2026] [security2:error] [pid 101296] [client 34.93.132.141:58212] [clien ...
show more
[Mon Aug 31 20:55:48.071835 2026] [security2:error] [pid 101296] [client 34.93.132.141:58212] [client 34.93.132.141] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/modsecurity/crs/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "94"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [ver "OWASP_CRS/3.3.4"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "whoson2day.com"] [uri "/"] [unique_id "apVdtMOsH9-VTpla3km3WgAAAAY"]
...
show less
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:39:00
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:38:54.345273 2026] [security2:error] [pid 24163:tid 24163] [client 34.93.132.141:37386] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whomakestherules.com"] [uri "/.git/config"] [unique_id "apVZvuy17jpH0prmJ0qW2gAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 10:09:25
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 06:09:17.244445 2026] [security2:error] [pid 30451:tid 30451] [client 34.93.132.141:35932] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "wholesaleglassjars.com"] [uri "/.git/config"] [unique_id "apVSzT4aBBrbQJxBFu44aQAAAB4"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 08:27:55
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 04:27:52.240335 2026] [security2:error] [pid 25766:tid 25766] [client 34.93.132.141:47520] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whodatnation.com"] [uri "/.git/config"] [unique_id "apU7CPhhhukBenyDf5jNSwAAACc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-31 07:56:41
(3 days ago)
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.93.132.141 (141.132.93.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 31 03:56:33.350544 2026] [security2:error] [pid 32684:tid 32684] [client 34.93.132.141:59804] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "whml.jazziientertainment.com"] [uri "/.git/config"] [unique_id "apUzsfWnJb6g4xvteUO6nAAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ธ๐ช
vaia.cloud
2026-08-31 07:55:02
(3 days ago)
crowdsecurity/http-probing
Brute-Force
Web App Attack